article thumbnail

Is this the right way to expose VLANs through VPN (VPN server location)?

Network Engineering

Starting from the following network topology: Internet ISP Cable Router Firewall Router rest of the network / multiple VLANs (port forwarding) | DMZ I had to expose two VLANs over the internet through VPN for two groups of users. what is the recommended way of achieving what I want to do?

VPN 130
article thumbnail

「Netscreen」 VPN UP/DOWN due to loopback address source monitoring

Network Engineering

I am dealing with a problem with Netscreen VPN. Topology is basically Server Side (Agg2)Trust/Untrust(Agg1) Remote Office (Yamaha) 100.66.xx.0/24 0/24 Netscreen VPN Internet 100.71.YY.0/24 But because of the monitoring VPN is giving UP/DOWN alert in every 100 seconds. set vpn monitor source-interface loopback.1

VPN 130
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

IP in same subnet cannot access my server [closed]

Network Engineering

I host a Plex server through my home network and SERVER.com resolves to my IP (136.24.55.XXX). For some reason, when they try to access my server, they get address unreachable error. If they switch to mobile data or VPN, the connection works again. What can be done in this situation to give them access to my server?

Server 130
article thumbnail

Change RADIUS auth method for remote access ipsec vpn

Network Engineering

We have a Cisco 3825 router with an IPSec Remote Access VPN configured to authenticate against a radius server. We're retiring the old server and moving to a new one (Windows Server 2012). We changed the radius-server host line in our config accordingly and the router is able to communicate with the new radius server.

VPN 130
article thumbnail

ALTERNATIVE FOR NAT LOOPBACK ISSUE ( only server side config or improvements are allowed )

Network Engineering

I am reaching out to seek assistance with an issue related to accessing a server hosted in our internal network. Here are the details of the scenario: We actually provide Security camera services to clients The server is hosted in the internal network with an IP address in the range 192.168.0.x/24.

Server 130
article thumbnail

Traceroute through IPSec tunnel

Network Engineering

24 to the server 10.0.0.0/24, set transform-set TS match address vpn-ke-bjjpusat ! ! ! ! ! ! ip access-list extended vpn-ke-bjjpusat permit ip 192.168.11.0 set transform-set TS match address vpn-ke-kcp1 ! ! ! ! ! ! ip access-list extended vpn-ke-kcp1 permit ip 192.168.10.0 24, which is site B. NETWORK DIAGRAM.

article thumbnail

Error accessing Cisco ASA using ASDM

Network Engineering

inside no snmp-server location no snmp-server contact snmp-server enable traps snmp authentication linkup linkdown coldstart crypto ipsec security-association lifetime seconds 28800 crypto ipsec security-association lifetime kilobytes 4608000 telnet timeout 5 ssh timeout 5 console timeout 0 dhcpd auto_config outside !

VPN 130